Password configuration matrix (Windows)

When the preferred method of password-handling is determined, review the following steps to set the keywords and parameters in the various profiles.

Detailed information about password-handling methods is available in the Determining the IBM Storage Protect™ password method topic.

After you select the suitable password-handling method, follow this configuration matrix to set the keywords and parameters. Proceed as indicated by the step number.
Table 1. Password handling for Windows™
Step Profile/Action Parameter Password
No Manual Set by IBM Storage Protect
1 IBM Storage Protect admin AUTHENTICATION EXPIRATION PERIOD (see note 1) OFF ON n days (see note 2) ON n days
2 server.opt

PASSWORDACCESS

PASSWORDDIR (see note 5)

NODENAME

Unavailable

PROMPT

Unavailable

Unavailable

GENERATE

path

nodename

3 IBM Storage Protect admin UPDATE NODE (see notes 1,6) Unavailable. password password
4 Data Protection for SAP profile initSID.utl For each SERVER statement, specify: PASSWORDREQUIRED ADSMNODE NO nodename YES nodename       NO (see note 4)
5 Data Protection for SAP command line

Specify in each SERVER statement:

backint -p initSID.utl 
-f password
  Unavailable   password (see note 1)   password
5 Data Protection for SAP profile initSID.utl For each SERVER statement, specify:PASSWORDREQUIRED ADSMNODE   

NO

nodename

 

YES

nodename

  NO (see note 4)
6 Command line backom -c password Unavailable password (see notes 3,7) password (see notes 3,7)
Note:
  1. See IBM Storage Protect documentation.
  2. If you are using manual password generation during testing, make sure that the expiration period is set to an appropriate time.
  3. For an initial setup, this password must be the same password that is specified when the node was registered to IBM Storage Protect. The password must be changed first on the IBM Storage Protect server and then on Data Protection for SAP.
  4. ADSMNODE must not be set when PASSWORDACCESS generate is set.
  5. The users SIDadm and sapserviceSID must have read and write permission for the path specified in the PASSWORDDIR option in the IBM Storage Protect client options file.
  6. This step is only necessary if the password is expired (manual-handling only) or must be changed on the IBM Storage Protect server.
  7. A password must be entered for each server statement in the Data Protection for SAP profile.